The User Level: Social Engineering

Social Engineering is the practice of receiving information you are not authorized to have through means of deception and exploitation. Social engineering is when someone tricks another person into giving them information under false pretenses.

Methods of attack may include the telephone, e-mail / Internet, or in person.

How to protect yourself again Social Engineering:

  • Verify the identity of a person requesting confidential information. Verification with a photo ID is best.
  • Verify that the URL is correct and secure.
  • Verify that the person is who they say they are and are employed by who they claim.
  • Verify that the person has permission to do what they have stated they are going to do.
  • Verify everything!
  • And, unfortunately, be suspicious of anything and everything out of the ordinary.

 

Related Posts

The Magnificent Seven 2023

Seven Trends . . . …that small bank Information Security Officers face in 2023 Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Welcom...

“Phone Phishing” – Awareness Poster (Re-release)

Another awareness poster for YOUR customers (and users). Now that we have our own employees aware, maybe it’s time to start posting content for our customers!Check out posters.infotex.com for...

“Strong Password Tips” – Awareness Poster

Another awareness poster for YOUR customers (and users). Now that we have our own employees aware, maybe it’s time to start posting content for our customers!Check out posters.infotex.com for...